ipz2xfyvr3dgb8m.lastbuy.ru

Private Person  (Proxy Registrant)

Domain Information

The domain ipz2xfyvr3dgb8m.lastbuy.ru is registered by proxy through REGRU-RU and was originally registered in May of 2015. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Amsterdam, Noord-Holland within Netherlands which resides on the RIPE Network Coordination Centre network.
Registrar:
REGRU-RU

Server location:
Noord-Holland, Netherlands (NL)

Create date:
Thursday, May 28, 2015

Expires date:
Saturday, May 28, 2016

ASN:
AS59711 FORTUNIX-AS Fortunix Networks L.P.,GB

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Amonitize, PUP.InstallMonster.Torgivel (M)
100.00%

VIPRE Antivirus
Threat.5064197
50.00%

Dr.Web
Trojan.InstallMonster.1235
50.00%

ESET NOD32
Win32/InstallMonstr.LO potentially unwanted application
50.00%

Malwarebytes
PUP.Optional.InstallMonster
50.00%

Avira AntiVirus
ADWARE/InstMon.laoin
50.00%

F-Secure
Riskware.Application.Generic.1315987
50.00%

K7 AntiVirus
Unwanted-Program
50.00%

Agnitum Outpost
Trojan.InstallMonster
50.00%

AVG
Generic
50.00%

The domain ipz2xfyvr3dgb8m.lastbuy.ru has been seen to resolve to the following 2 IP addresses.

May 19, 2016

June 19, 2015

File downloads found at URLs served by ipz2xfyvr3dgb8m.lastbuy.ru.

URL:
http://ipz2xfyvr3dgb8m.lastbuy.ru/

Title:
“Domain is parked”

Web server:
nginx/1.4.2 (PHP/5.4.17)